Cyber Magazine May 2022 | Page 100

MERALCO
physical systems . Other possible risks here would be the denial of service or attacks .”
“ This is where we need to look at strong encryption in smart metres , as well as the possibility of deploying an IoT secure gateway and proper segmentation within the smart metre network .”
Such infrastructure will prevent the interception of vital personal and confidential data , helping to prevent attacks that result from vulnerabilities exposed by shared software and hardware systems on one singular platform , and ensure secure communication protocols – and this should be established across each of the aforementioned layers .
“ Visibility is important . If you can start collecting logs and then integrating these logs into the security operation centre , then that is great ,” Migriño says . “ You need to think about the capabilities , so you need to have the right blend of people and skills that will actually support this . Look at the things around establishing IIoT security operations that will support the IT and OT transformation within the enterprise .”
“ We look at the different data from various security logs , then have it correlated to create an intelligent behavioural-based risk to detect and respond to an attack ,” she says . “ With the infusion of analytics coming from the intelligent sensors and automations in the smart grid , operations can be improved , maintenance costs reduced , and real-time communication and support enabled .”
Migriño believes that achieving the correct balance between security and performance can be a challenge , particularly when there are “ organisational silos ”, as they can have a ripple effect on all other aspects , which requires thorough risk-assessment planning , coordination
and monitoring by both the cyber and technology teams for “ remediation ”.
Looking at the future of cyber security “ We could have gone through having an unsecure network wherein it got compromised then evolved to a secure network but with the aggressive stance on risk , certain risk conscious organisations will move to a very secure network . So things could swing on premise but the use of cloud will remain because businesses will still look for less expensive and faster ways to innovate . But digital trust and all of its components will be even greater than what we are experiencing now .”
100 May 2022